Skip to main content
  1. Home
  2. Computing
  3. Web
  4. News

Hacker steals at least 58 million personal records from data management firm

Add as a preferred source on Google

Hardly a day goes by lately when we don’t hear about a massive data breach. Whether it’s a major retail outlet like Home Depot, an electronic auction service like eBay, or an online services company like Yahoo, no matter where your personal data resides it seems wide open to malicious attack. Research shows that there have been 2,928 publicly disclosed attacks so far in 2016 involving greater than 2.2 billion records in total.

Sometimes, you know that you’re a victim of a data breach, such as when Blue Cross Blue Shield company Carefirst was hacked and over a million records were stolen. Sometimes, however, as with the recent data breach at Modern Business Solutions (MBS), you may not even be aware that the company exists, according to security firm Risk Based Security.

Recommended Videos

Related: Target data breach forces CEO out the door

MBS is a company specializing in providing in-house data management and monetization services to other companies. If you’re an MBS customer, then you probably don’t even know it, and the 58 million stolen database records could belong to just about anyone.

The hacker who perpetrated the theft is known by the Twitter handle @0x2Taylor, and apparently the stolen data was posted multiple times over the past weekend. The data was quickly removed each time, but it included complete names, IP addresses, dates of birth, email addresses, vehicle data, and occupations. In other words, the data would be incredibly helpful for conducting further, highly individualized attacks such as identity theft.

Perhaps worst, the breach was made possible due to the use of an obvious attack vector. MBS was using an open MongoDB database, and apparently all that was needed for the attack to occur was for the IP address of that database to be communicated online. Rather than informing MBS of the security issue, whoever found the database leaked it to acquaintances instead. From there, the attack was both simple and straightforward.

At this point, there’s some confusion as to the actual number of records that were released. While it’s at least 58 million, it could be as many as 258 million based on an analysis of the database involved. While research is ongoing, it’s entirely possible that we’ll never know exactly how much data was released and who was affected.

Normally we would give various recommendations about being aware of where your personal data is being stored and to respond appropriately to any notifications of a data breach. In this case, there’s not much you can do except invest in a credit and data monitoring service of some sort to make sure you’re generally protected — because you never know when you might be attacked and not even know it.

Mark Coppock
Former Computing Writer
Mark Coppock is a Freelance Writer at Digital Trends covering primarily laptop and other computing technologies. He has…
I didn’t think fake shopping could trick my brain until I tried the viral dopamine websites
On these fake shopping and delivery sites, nothing ever ships or costs a cent, yet the dopamine hit still felt real.
fake-shopping-on-viral-dopamine-websites

I spent some time in the internet's fakest mall, filling a shopping cart with things I could not buy, hunting for discounts on products that do not exist, and checking out three separate times for a grand total of $0.00. Then I placed a fake food order and smoked a cigarette I could not taste, with strangers I will never meet, on a rooftop that does not exist either. My bank balance never changed, but my brain, annoyingly, did.

When I first heard about South Korea's growing "dopamine sites," I assumed they were another internet oddity I would poke around for five minutes and forget by lunch. Instead, I found a surprisingly clever idea hiding beneath the absurdity. You can browse endless imaginary products, add everything to your cart, and complete a purchase that never actually exists. These websites aren't trying to sell you anything. They're trying to recreate the feeling of shopping while removing the part that empties your wallet.

Read more
LG wants to build humanoid robots, and NVIDIA is giving it the brains
This isn't just another robot teaser. LG and NVIDIA just outlined actual hardware.
Robot, Appliance, Device

With time, more and more legacy hardware companies seem to be racing to bolt a humanoid robot onto their roadmap. The latest entrant is LG, joining the race with tentative timelines.

The company's bipedal humanoid, built on Nvidia's robotics stack, is planned for early 2027, and it's backed by a broader push into AI factories and self-driving vehicle platforms.

Read more
Googlebook may use older Snapdragon chips to build more affordable laptops
Snapdragon X Plus and X Elite models could be in development
Googlebook

Google has already confirmed that Googlebook will support more than one chipmaker, and a new leak may have revealed the first Snapdragon models in development.

New code references uncovered by GbookHub reportedly link two Googlebook designs, codenamed Annite and Pic, to Qualcomm’s Snapdragon X Plus X1P-42-100 processor. Both are also said to be tied to a board platform called Mica.

Read more